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97. (NEW) A protect processing environment comprising: 
means for providing a tamper resistant enclosure; 

means for maintaii^ing at least one public verification key within the tamper 
resistant enclosure; and 

means for authenticating load modules based, at least in part, on use of the 
public verification key. 



98. (NEW) A method qf distinguishing between trusted and untrusted load 
modules comprising: 

(a) receiving a load module, 

(b) determining whether the load module has an associated digital signature, 

(c) if the load module has an associated digital signature, authenticating the 
digital signature using at leask one secret public key; and 

(d) conditionally executing the load module based at least in part on the results 
of authenticating step (c). 



99. (NEW) A method of increasing the security of a virtual distribution 
environment comprising pluraf interoperable protected processing environments 



having different work factoDs, 



lethod comprising: 



(a) classifying the pllural piptected processing environments based on work 



factor, 



(b) distributing different verification public keys to different protected 
processing environments havind different work factor classifications, and 

(c) using the distributed Verification public keys to authenticate load modules, 
including the step of preventing protected processing environments having different 
work factor classifications from executing the same load module. 



100. (NEW) A protected processing environment, comprising: 
a tamper resistant barrier having a first work factor; and 
at least one arrangement wiihin the tamper resistant barrier that prevents the 
protected processing environment from executing the same load module accessed by a 
further protected processing envirorJment having a further tamper resistant barrier with 
a further work factor substantially different from the first work factor. 
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101 . (NEW) A method for i^rotecting a computation enviromnent surrounded by a 
tamper resistant barrier havingla first work factor, the method including: 

preventing the computsition environment from using the same software module 



accessible by a ftirther computj 



barrier with a further work fact )r substantially different from the first work factor. 



(a) associating plural d 



tion environment having a fixrther tamper resistant 



102. (NEW) A method of protecting computation environments comprising: 



gital signatures with a load module; 



(b) authenticating a first subset of the plural digital signatures with a first 
tamper resistant computation er vironment; and 

(c) authenticating a sec< )nd subset of the plural digital signatures with a second 



tamper resistant computation er 



vironment different from the first environment. 



103. (NEW) A computer security method comprising: 

digitally signing, using a first digital signing technique, a first executable 
designating the first executable' tor use by a first device class; and 

digitally signing, usirig j^^s^ond digital signing technique different from the 
first digital signing techniqui^ ^aond executable designating the second executable 
for use by a second device class hak^ing a tamper resistance and/or work factor 



substantially different from the 
class. 



amper resistance and/or work factor of the first device 



104. (NEW) A method of aut lenticating an executable comprising: 

(a) authenticating a first digital signature associated with the executable, 
including the step of employing a first one-way hash algorithm, a first decryption 
algorithm, and a first public key; land 

(b) authenticating a second digital signature associated with the executable, 
including the step of employing ax least one of: 

(i) a second one-w^y hash algorithm that is dissimilar to the first one- 
way hash algorithm, 

(ii) a second decryption algorithm that is dissimilar to the first 
decryption algorithm, and 

(iii) a second public ^ey that is dissimilar to the first public key. 
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105. (NEW) A secure execut on space comprising: 
means for providing a ta nper resistant barrier; 



means for maintaining at 
resistant barrier; and 

means for authenticating 
public verification key. 



least one public verification key v^ithin the tamper 



^xecutables based, at least in part, on use of the 



1 06. (NEW) A method of dist 
comprising: 

(a) receiving an executab 



nguishing between trusted and untrusted executables 



e; 



(b) determining whether the executable has an associated digital signature; 

(c) if the executable has an associated digital signature, authenticating the 
digital signature using at least om secret public key; and 

(d) conditionally executinjg the executable based at least in part on the results 
of authenticating step (c). 



(a) classifying the plural secure 



107. (NEW) A method of incj^ asing the security of plural interoperable secure 
execution spaces having different ^p^dvk factors, the method comprising: 



execution spaces based on work factor; 



(b) distributing different v jrifidation public keys to different secure execution 
spaces having different work factor classifications; and 

(c) using the distributed verification public keys to authenticate executables, 
including the step of preventing se(;ure execution spaces having different work factor 
classifications from executing the sbme executable. 



108. (NEW) A protected processing environment comprising: 
a tamper resistant barrier haying a first work factor; and 
at least one arrangement within the tamper resistant barrier that prevents the 

secure execution space from executing the same executable accessed by a further 

secure execution space having a furtfter tamper resistant barrier with a ftirther work 

factor substantially different from thq first work factor. 
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109. (NEW) A method for protecting a computation environment surrounded by 
a tamper resistant barrier having a first work factor, the method including: 

preventing the computation environment from using the same software module 
accessed by a further computation environment having a fiirther tamper resistant 
barrier with a further work factof substantially different from the first work factor. 



1 10. (NEW) A method of protecting computation environments comprising: 

(a) associating plural cng|tal;signatures with an executable; 

(b) authenticating a first-stmset of the plural digital signatures with a first 
tamper resistant computation environment; and 

(c) authenticating a second subset of the plural digital signatures with a second 
tamper resistant computation environment different from the first environment. 
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